Техническая информация
- %ALLUSERSPROFILE%\Start Menu\Programs\Startup\WinInetDriver.url
- %TEMP%\PrintIsolationHost.exe
- %TEMP%\PassGen.exe
- %TEMP%\dw.log
- %TEMP%\20F38.dmp
- %ALLUSERSPROFILE%\Application Data\{f2bab1-e8fc5d-8494-9c0fb4417232}\hostdl.exe
- %ALLUSERSPROFILE%\Application Data\{f2bab1-e8fc5d-8494-9c0fb4417232}\hostdl.exe
- '%TEMP%\PrintIsolationHost.exe'
- '%CommonProgramFiles%\Microsoft Shared\DW\DW20.EXE' -x -s 600
- '<SYSTEM32>\schtasks.exe' /create /tn WinInetDriver /tr %ALLUSERSPROFILE%\Application Data\{f2bab1-e8fc5d-8494-9c0fb4417232}\hostdl.exe /sc minute /F